// the find
tofuutils/tenv
OpenTofu / Terraform / Terragrunt / Terramate and Atmos version manager
tenv is a Go-based version manager that replaces tfenv/tofuenv and extends the idea to cover Terragrunt, Terramate, and Atmos under one binary. It's for teams juggling multiple IaC tool versions across projects who got tired of shell-script version managers like asdf.
It actually parses your .tf/terragrunt files with an HCL parser to resolve the required version constraint, instead of just reading a dotfile like tfenv does. Signature verification is real: SHA256 plus cosign or PGP checks on downloaded binaries, which most version managers skip entirely. It ships as native binaries with no shell dependency, so it runs the same on Windows/BSD/Solaris where asdf-style tools don't. There's also a GitHub App auth mode for CI (useful for Atlantis-style setups hitting rate limits) and a Go library wrapper (tenvlib) with an actual semver compatibility promise, not just a CLI.
Five tools means five sets of env var prefixes (TOFUENV_, TFENV_, TG_, TM_, ATMOS_) inherited from the predecessor projects — it's not a clean unified config surface, it's three tools glued together with compat shims. There's no plugin system, so anything outside the IaC space (Node, Python, etc.) still needs a separate asdf or mise install. The Docker image is explicitly documented as not meant for CI, which is odd since CI is where pinned reproducible toolchains matter most. Signature checking strength also varies by TENV_VALIDATION mode (signature/sha/none), and it's easy to end up running with weaker guarantees than you think if that's not set explicitly.